This guide describes the ESF's SPRINT (Simplified Process for Risk Identification) risk analysis methodology, the thinking behind it and how to apply it.
SPRINT reflects growing demand for tools to help business managers examine the security of their information systems in a structured manner. It focuses on systems that are rated 'Important but not critical'.
The guide contains worked examples of the SPRINT process and a supply of the materials needed to conduct SPRINT assignments.
|